Pulse by Ciphera vs Wide Angle Analytics

Compare Pulse by Ciphera and Wide Angle Analytics on capabilities, jurisdiction, assurance, and fit for European buyers.

Both listed as alternatives to: Fathom Analytics, Google Analytics

Logo: Pulse by Ciphera

Pulse by Ciphera

Belgium· Web Analytics

Needs review

Shortlist Pulse when you want cookieless traffic analytics plus uptime and Lighthouse in one Belgian-operated, Swiss-hosted SaaS and can accept a closed managed backend. Skip when you need full self-hosting or GA-style user-level history; consider Plausible Analytics or Simple Analytics instead.

EU-operatedCookielessOpen-source clientSwiss-hosted dataNo analytics cookies
Logo: Wide Angle Analytics

Wide Angle Analytics

Germany· Web Analytics

Needs review

Do not shortlist Wide Angle for new multi-year analytics: the vendor is winding the product down by end of August 2026. Existing customers should migrate using the promised data snapshot. For new EU privacy-analytics shortlists prefer Plausible, Pirsch, Simple Analytics, or Piwik PRO; keep Matomo-class stacks when self-host control is mandatory.

Cookieless by defaultGerman GmbH (Berlin)OVHcloud FR/DE hostingSaaS only (no self-host)EOL Aug 2026
Pulse by Ciphera vs Wide Angle Analytics: Snapshot
FeatureLogo: Pulse by CipheraPulse by CipheraLogo: Wide Angle AnalyticsWide Angle Analytics
Country of originBelgiumGermany
CategoryWeb AnalyticsWeb Analytics
Open sourceYesNo
Self-hostedNoNo
HeadquartersBelgiumGermany
Legal entityCiphera BVInput Objects GmbH, Scharnhorststraße 24, 10115 Berlin, Germany
Governing lawBelgian law (GDPR); Swiss FADP for infrastructure locationNot listed
US parent / controlNo known US parentNo known US parent
CLOUD Act exposure (indicative)LowMedium
EU-hosted statusPartialNot listed
Hosting / residencyPrimary compute and object storage on Exoscale in Switzerland (Zurich). Encrypted backups and domain registration via Infomaniak (Switzerland). CDN/DNS/DDoS via Bunny (Slovenia HQ, global edge for transient IPs). Payments via Mollie (Netherlands). GitHub (US) for public source code only, per Trust page.Visitor analytics: OVHcloud limited to FR/DE (vendor). Account path: Paddle (payments), Brevo email/automation, Infomaniak; older vendor post notes Brevo/Sendinblue encrypted DR involving AWS/GCP. No known US corporate parent.
Summary

Cookie-free web analytics with traffic, funnels, uptime and Lighthouse checks in one Belgian-operated, Swiss-hosted dashboard.

German cookieless-by-default web analytics SaaS (Input Objects GmbH, OVHcloud FR/DE). Product announced for discontinuation end of August 2026—prefer living EU peers for new deployments.

Tags
At a glance: Pulse by Ciphera vs Wide Angle Analytics
At a glanceLogo: Pulse by CipheraPulse by CipheraLogo: Wide Angle AnalyticsWide Angle Analytics
HQDiegem, Belgium (Ciphera BV)Berlin, Germany (Input Objects GmbH)
Legal entityCiphera BV (KBO/BCE 1013.721.660)Not listed
Founded18 September 2024 (CBE)Not listed
Primary data regionSwitzerland (Exoscale Zurich)Not listed
LicenseAGPL-3.0 client; managed backend closedNot listed
Commercial modelFree Hobby tier; paid plans by traffic scaleEvent/site SaaS tiers + 14-day trial (see official pricing)
Product launchNot listedNovember 2021
Hosting (visitor path)Not listedOVHcloud France & Germany (vendor-stated)
Open sourceNot listedNo
Self-hostNot listedNo
StatusNot listedDiscontinuing end of August 2026
CookielessYes (vendor claim: no cookies, no fingerprinting)Not listed
Data residency regionsSwitzerland (Exoscale primary; Infomaniak backups)Not listed
Key capabilities: Pulse by Ciphera vs Wide Angle Analytics
Key capabilitiesLogo: Pulse by CipheraPulse by CipheraLogo: Wide Angle AnalyticsWide Angle Analytics
EU-operatedYesNot listed
CookielessYesNot listed
Open-source clientYesNot listed
Swiss-hosted dataYesNot listed
No analytics cookiesYesNot listed
Cookieless by defaultNot listedYes
German GmbH (Berlin)Not listedYes
OVHcloud FR/DE hostingNot listedYes
SaaS only (no self-host)Not listedYes
EOL Aug 2026Not listedYes

Pulse by Ciphera

  • Cookieless traffic dashboard

    Pageviews, unique-visitor estimates, referrers, UTM campaigns, device or browser splits, and country-level geo from a single script tag, without cookies or fingerprinting according to Ciphera's privacy docs.

  • Journeys and conversion funnels

    Step-by-step path columns and multi-step funnels with drop-off analysis, filterable by page, country, device, or referrer for privacy-preserving conversion debugging.

  • Uptime monitors with alert routes

    Built-in uptime checks with downtime and recovery alerts to email, Slack, Discord, or a webhook, so availability sits beside traffic in one console.

  • Daily Lighthouse and Core Web Vitals

    Scheduled mobile and desktop Lighthouse runs with performance, accessibility, best-practices, SEO scores, and Core Web Vitals trends without a separate RUM product.

  • Inspectable AGPL client and read API

    Dashboard and tracking script are AGPL-3.0 on GitHub; Ciphera also documents a public read API, CLI, and export paths while keeping the managed backend closed.

Wide Angle Analytics

  • Cookieless request-based sessions with daily rotating salt

    Default mode hashes site + IP + User-Agent with a non-persisted daily salt (SHA-256). Same-day uniques without cookies or long-lived IDs; past sessions cannot be re-linked after salt rotation. Optional 24h cookie or canvas fingerprinting change the consent analysis.

  • Optional tracking modes for SPA and consent-gated detail

    Enable HTTP(S)-only 24h cookies, client fingerprinting, or service-issued IDs for SPA reliability. Fingerprinting is off by default and may require consent—controllers must re-assess before enabling.

  • Marketer dashboards, custom events, and multi-site teams

    Real-time charts for sources, pages, devices, UTM campaigns, goals, custom actions, and e-commerce revenue attribution. Higher tiers add multi-user sharing, permissions, and many sites without SQL.

  • CMS one-click installs and lightweight script embed

    Plugins/integrations for WordPress, Squarespace, Wix, Ghost, Webflow, and common JS stacks; custom sites add a script tag. Built for marketers rather than BI engineers.

  • OVHcloud EU regions (FR/DE) for visitor analytics path

    Vendor states product hosting is limited to OVHcloud France and Germany with no end-user analytics transfer outside EU/EEA and no sale of visitor data. Account billing/email use separate subprocessors (see Trust).

Assurance & compliance: Pulse by Ciphera vs Wide Angle Analytics
Assurance & complianceLogo: Pulse by CipheraPulse by CipheraLogo: Wide Angle AnalyticsWide Angle Analytics
Independent security / no-logs audit
Not found

Trust page states no independent audit yet; Tessera self-audit published; independent audit planned.

Not found

No public independent pen-test or no-logs audit PDF found on site materials reviewed.

ISO 27001
Not found

Ciphera explicitly states it holds no ISO 27001 certification.

Not found

No public ISO 27001 certificate page found.

SOC 2 / SOC 3
Not found

Ciphera explicitly states it holds no SOC 2 certification.

Not found

No public SOC 2/3 report found.

GDPR / EU data protection
Vendor claimed

Belgian controller; privacy policy describes GDPR/FADP bases and Pulse processor role. Not legal advice.

Vendor claimed

German controller/processor entity; cookieless-default design; DPO named (DPO CONSULTING). Not legal advice.

US CLOUD Act exposure (indicative)
Partial

EU (Belgian) entity with no known US parent; primary hosts are European (Exoscale, Infomaniak, Bunny, Mollie). Residual paths: GitHub (US) for source code only; Bunny global edge for transient IPs. Indicative only, not legal advice.

Partial

EU GmbH, no known US parent, OVH FR/DE visitor hosting; offset by Paddle and Brevo-related infrastructure (incl. encrypted AWS/GCP DR per vendor blog). Assessment row—not vendor marketing.

Data processing agreement (B2B)
On request / NDA

Privacy policy: DPA available on request at privacy@ciphera.net for Pulse processor relationships.

Vendor claimed

Vendor blog/compliance materials state a signed DPA is offered; confirm current template with vendor.

EU AI Act
Not applicable

Web analytics product; not an AI system product page.

Not applicable

Web analytics product, not an AI system under typical AI Act product framing.

Considerations & known limitations: Pulse by Ciphera vs Wide Angle Analytics
Considerations & known limitationsLogo: Pulse by CipheraPulse by CipheraLogo: Wide Angle AnalyticsWide Angle Analytics
Managed backend is not open source
Medium

You can audit the browser script and dashboard code, but not the operated ingestion and storage service. Procurement that requires full-stack self-host or full server auditability should look elsewhere.

Not listed
No ISO/SOC or independent audit yet
Medium

Ciphera publishes threat models, a warrant canary, and a subprocessor list, but explicitly has no ISO 27001 or SOC 2 and no completed independent audit. Enterprise security reviews will need questionnaires and a signed DPA.

Not listed
Primary data residency is Switzerland, not EU/EEA
Low

Swiss adequacy covers many GDPR transfer questions, but policies that hard-require EU/EEA datacenter soil will classify this as partial rather than EU-hosted.

Not listed
Marketing vs privacy wording conflicts
Low

Product FAQ pages disagree on whether custom events ship today and whether a DPA is needed. Prefer privacy@ and the privacy policy for legal commitments until Ciphera aligns the FAQs.

Not listed
Product end-of-life (August 2026)Not listed
High

Vendor announced discontinuation; service runs until end of August 2026 with pro-rata refunds and a vendor-prepared snapshot—not a self-service export. New deployments risk forced migration within weeks.

No self-host continuity pathNot listed
High

SaaS-only design means the product cannot be retained on your infrastructure after shutdown.

Account subprocessors beyond OVHNot listed
Medium

Paddle, Brevo, Infomaniak (and historical Brevo DR via US-group clouds) affect customer-account and support data paths even if visitor analytics stay on OVH EU.

Optional fingerprinting/cookiesNot listed
Medium

Non-default modes can reintroduce consent obligations; misconfiguration is a controller risk.

No public ISO/SOC/independent auditNot listed
Medium

Assurance rests on design docs, DPA, and vendor claims unless private reports are provided under NDA.

Fit

Pulse by Ciphera

Best fit when

  • EU or Swiss organisations replacing GA4 primarily to remove analytics cookies and consent-banner friction
  • Teams that want traffic, funnels, uptime, and Lighthouse scores in one vendor console
  • Buyers who need a Belgian legal entity and named European subprocessors rather than a US cookieless SaaS
  • Sites that can work with aggregate and month-scoped visitor estimates instead of persistent user IDs
  • Engineering leads who want the browser script and dashboard code on GitHub under AGPL-3.0 for inspection

Poor fit when

  • Organisations that must self-host the full analytics backend (Pulse's managed core is closed)
  • Product analytics use cases that need durable cross-visit identity, cohorting, or GA4 BigQuery-style user exports
  • Buyers requiring completed ISO 27001, SOC 2, or a published independent security audit today
  • Teams that need EU/EEA soil specifically rather than Swiss residency (primary data is in Switzerland)

Consider instead when

  • When: You need a mature EU cookieless analytics product with an official full-stack self-host option

    Consider: Plausible Analytics

    Plausible (Estonia) is the common self-host plus SaaS peer; Pulse keeps the backend managed-only.

  • When: You want a minimal Dutch cookieless counter without uptime or Lighthouse bundles

    Consider: Simple Analytics

    Closer peer for strictly analytics SaaS; Pulse differentiates with ops-style panels.

  • When: You need enterprise analytics with strong EU residency controls and heavier compliance packaging

    Consider: Piwik PRO or Friendly Analytics

    Heavier Matomo-class or Swiss-hosted peers when Pulse's startup assurance set is too thin.

Wide Angle Analytics

Best fit when

  • Existing Wide Angle customers completing migration before the announced August 2026 shutdown
  • Historical evaluation of cookieless, marketer-oriented EU SaaS analytics design (daily-salted sessions, OVH FR/DE)
  • Teams that needed multi-site CMS installs and shared reports without running Matomo themselves (while service remained live)
  • Controllers comparing default cookieless vs optional fingerprint/cookie modes on a single product

Poor fit when

  • Any new production deployment expected to outlive August 2026
  • Buyers requiring open-source self-host continuity (use Plausible CE, Matomo, or similar)
  • Product analytics, session replay, heatmaps, or ad-tech attribution platforms
  • Orgs that need public ISO 27001 / SOC 2 certificates without requesting private packs
  • Free forever hosted analytics

Consider instead when

  • When: You need a living cookieless EU SaaS analytics product

    Consider: Plausible Analytics, Pirsch Analytics, or Simple Analytics

    All remain active EU-oriented peers in this directory category.

  • When: You need self-host or deep plugin/on-prem control

    Consider: Matomo (self-host or hosted peers) or Piwik PRO

    Wide Angle never offered self-host and is shutting down.

  • When: You accept US ad-stack analytics for free depth

    Consider: Google Analytics (GA4)

    Different jurisdiction, cookie/consent model, and product surface—not a like-for-like privacy swap.

Open questions for due diligence

Pulse by Ciphera

  • Will Ciphera sign your standard DPA and return the full registered-address subprocessor appendix on request?
  • What is the retention and deletion SLA for a single customer's Pulse project data after contract end?
  • When is the planned independent security audit scheduled, and will the report be public?
  • Are Google Search Console, Bing, or CDN analytics panels generally available, or only mentioned in some marketing copy?

Wide Angle Analytics

  • Exact cutover date/time and timezone for service stop after August 2026?
  • When and in what open format is each tenant's data snapshot delivered?
  • Current signed subprocessor list and SCCs under the active DPA (vs 2022 blog / iubenda summary)?
  • Any residual access window or deletion certificate after EOL?
  • Are private security assessments available under NDA before remaining term ends?